First published: Wed Feb 22 2006(Updated: )
Mozilla Thunderbird 1.5 allows user-assisted attackers to cause an unspecified denial of service by tricking the user into importing an LDIF file with a long field into the address book, as demonstrated by a long homePhone field.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Thunderbird | =1.5 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2006-0836 is classified as a denial of service vulnerability that can potentially disrupt normal functionality.
To address CVE-2006-0836, avoid importing LDIF files from untrusted sources and consider upgrading to a later version of Mozilla Thunderbird.
CVE-2006-0836 specifically affects Mozilla Thunderbird version 1.5.
CVE-2006-0836 requires user interaction to exploit, as it necessitates importing a malicious LDIF file.
The primary impact of CVE-2006-0836 is an unspecified denial of service, which can lead to application crashes or unresponsiveness.